Blog | G5 Cyber Security

Redis Servers Open to Internet are Infected With Malware

New crypto-mining attack dubbed RedisWannaMine was initially observed earlier last month targeting Windows Server, Apache Solr, and Redis servers. Imperva noticed the same key/ value pair on multiple servers which are a clear sign of botnet activity. The Redis based honeypot exposed by Imperva was exposed by a medium-sized botnet located at China (86% of IPs) The attacks included SQL injection, cross-site scripting, the malicious file uploads, remote code executions etc.”]

Source: https://gbhackers.com/redis-servers-open-internet/

Exit mobile version